SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact Us

As cyber threats become increasingly advanced and persistent, traditional perimeter-based defenses are no longer sufficient to protect critical infrastructure. For professionals responsible for securing the Bulk Electric System (BES), understanding the shift towards monitoring east–west traffic within trusted environments is essential. Recognizing the evolving threat landscape, the Federal Energy Regulatory Commission (FERC) issued Order 887, calling for enhanced detection capabilities that extend beyond the existing North American Electric Reliability Corporation (NERC) Critical Infrastructure Protection (CIP) standards, which have primarily focused on perimeter (north–south) controls.
Join us on August 19th, 2025, at 1:00pm ET for an in-depth webinar featuring Tim Conway, SANS ICS Curriculum Lead, and Robert M. Lee, Co-Founder and CEO of Dragos and SANS ICS/OT Practice Lead. Together, they’ll break down the evolving cybersecurity requirements under NERC CIP and examine the three core stages of the upcoming CIP-015 Internal Network Security Monitoring (INSM) standard: collection, detection, and analysis. Attendees will gain practical insights into developing the technical and organizational capabilities needed to monitor internal network communications and defend against sophisticated threats. This session is a must-attend for security and compliance professionals in the energy sector preparing for the next phase of CIP evolution.


Tim serves as the Technical Director of ICS and SCADA programs at SANS, and he is responsible for developing, reviewing, and implementing technical components of the SANS ICS and SCADA product offerings.
Learn more

SANS Fellow and Dragos CEO Robert M. Lee, author of ICS515 and FOR578 and co-author of ICS310, teaches from landmark industrial cyber investigations, turning real adversary tradecraft into visibility, detection, and response skills in OT.
Learn more